AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2007-2294

HIGH · CVSS 7.8 EPSS 3.86%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-04-26 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2007-2294
Severity
HIGH
CVSS
7.8
EPSS
3.86%

Original Filing — NVD Description

The Manager Interface in Asterisk before 1.2.18 and 1.4.x before 1.4.3 allows remote attackers to cause a denial of service (crash) by using MD5 authentication to authenticate a user that does not have a password defined in manager.conf, resulting in a NULL pointer dereference.